2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-12981MEDIUM5.4An issue was discovered on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. The vulnerabilit...
CVE-2018-12979MEDIUM6.5An issue was discovered on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. Weak permissions...
CVE-2018-0039MEDIUM6.5Juniper Networks Contrail Service Orchestration releases prior to 4.0.0 have Grafana service enabled by default with har...
CVE-2018-0035MEDIUM4.4QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53-D31, 15.1X53-D32, 15...
CVE-2018-0034MEDIUM5.3A Denial of Service vulnerability exists in the Juniper Networks Junos OS JDHCPD daemon which allows an attacker to core...
CVE-2018-0031MEDIUM5.3Receipt of specially crafted UDP/IP packets over MPLS may be able to bypass a stateless firewall filter. The crafted UDP...
CVE-2018-0029MEDIUM5.7While experiencing a broadcast storm, placing the fxp0 interface into promiscuous mode via the 'monitor traffic interfac...
CVE-2018-0026MEDIUM4.7After Junos OS device reboot or upgrade, the stateless firewall filter configuration may not take effect. This issue can...
CVE-2018-0025MEDIUM6.1When an SRX Series device is configured to use HTTP/HTTPS pass-through authentication services, a client sending authent...
CVE-2018-10232MEDIUM6.5Cross-site request forgery (CSRF) vulnerability in TOPdesk before 8.05.017 (June 2018 version) and before 5.7.SR9 allows...
CVE-2018-3693MEDIUM5.6Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of ...
CVE-2018-3632MEDIUM6.7Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6.x / ...
CVE-2018-3629MEDIUM6.5Buffer overflow in event handler in Intel Active Management Technology in Intel Converged Security Manageability Engine ...
CVE-2018-12462MEDIUM4.8NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities.
CVE-2018-1116MEDIUM4.4A flaw was found in polkit before version 0.116. The implementation of the polkit_backend_interactive_authority_check_au...
CVE-2018-10872MEDIUM6.5A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or P...
CVE-2018-2432MEDIUM5.4SAP BusinessObjects Business Intelligence (BI Launchpad and Central Management Console) versions 4.10, 4.20 and 4.30 all...
CVE-2018-10890MEDIUM4.3A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. It was possible for the core_course_get_categori...
CVE-2018-10889MEDIUM4.3A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No option existed to omit logs from data privacy exports...
CVE-2018-1549MEDIUM5.4IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to HTTP response splitting attacks. ...
CVE-2018-1523MEDIUM5.4IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulner...
CVE-2018-1492MEDIUM4.3IBM Jazz Foundation products could allow a user with physical access to the system to log in as another user due to the ...
CVE-2018-1423MEDIUM4.3IBM Jazz Foundation products could disclose sensitive information to an authenticated attacker that could be used in fur...
CVE-2018-1396MEDIUM5.4IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulner...
CVE-2018-1521MEDIUM5.4IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerabi...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now